Ninjaframework's vulnerability profile centers on the Ninja build system, a specialized software-construction tool with a narrower deployment footprint than general-purpose frameworks. The observed weakness classes reflect cryptographic implementation concerns, including inadequate encryption strength and reliance on broken or risky cryptographic algorithms. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ninjaframework over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-36823HIGH The encrypt() function of Ninja Core v7.0.0 was discovered to use a weak cryptographic algorithm, leading to a possible leakage of sensitive information. | Jun 6, 2024 | 7.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ninjaframework.
Media articles that mention a CVE ID that affects a product developed by Ninjaframework — matched by CVE ID, not by vendor name.